CWE-129
High likelihoodImproper Validation of Array Index
The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.
604 vulnerabilities with CWE-129
CVE-2009-3080
Linux Kernel < 2.6.32-rc8 - Local Privilege Escalation via Negative Event Index in gdth_read_event
CVE-2007-5756
WinPcap < 4.0.2 - Local Privilege Escalation via Crafted IOCTL Requests
CVE-2005-0369
MEDIUM
Armagetron < 0.2.6.0 and Armagetron Advanced < 0.2.7.0 - Denial of Service via Large Descriptor ID or Claim ID
CVSS 5.3
CVE-2003-0721
Pine < 4.58 - Remote Code Execution via Negative Array Index in rfc2231_get_param
Details
Vulnerabilities
604
Exploit Likelihood
High